Bloom Security exits stealth with $20M seed for AI-era endpoint risk
What's the deal? Bloom SecurityDealroom has a profile for this one. Try Dealroom → has raised a $20 million seed round to help enterprises track and control the flood of AI tools running on employee devices. Glilot Capital PartnersDealroom has a profile for this one. Try Dealroom → and Ten Eleven VenturesDealroom has a profile for this one. Try Dealroom → co-led, with Okta VenturesDealroom has a profile for this one. Try Dealroom → and Runtime VenturesDealroom has a profile for this one. Try Dealroom → participating. The Tel Aviv-based startup is emerging from stealth already deployed at dozens of large enterprises in the US and Europe.
Why now? AI agents, browser extensions, MCP servers and code packages are increasingly running alongside sanctioned business apps, creating software environments that are hard to inventory. Traditional endpoint detection and response tools were built to catch malware and malicious executables — not legitimate tools that turn risky through configuration, permissions or access.
What's the endgame? Bloom's platform inventories software across endpoints — tools, extensions and code — then examines how each interacts with data and systems and analyses supply-chain, configuration and permission risks. It also offers active controls: blocking risky installations, enforcing secure configurations and remediating without manual approval.
The company argues context is everything. "The same tool can be completely acceptable on one endpoint and high-risk on another," said Ofir Balassiano, co-founder and chief product officer. "Risk depends on context: the user's role, their access to sensitive data, the other tools operating on that endpoint, their configurations, and how everything interacts."
The pedigree: Chief executive officer Itay Keren previously held engineering and sales roles at Palo Alto Networks, Dig SecurityDealroom has a profile for this one. Try Dealroom → and Demisto. The round also drew angel investors who founded Dig Security, Demisto, Snyk and Talon.
"In the AI era, the employee device is no longer just a managed endpoint," Keren said. "Every endpoint is now running software no one reviewed, connecting to services no one provisioned."
The signal: The $20 million seed sits in the top 5% of all-time security seed rounds in Israel, a marker of how much capital is flowing to AI-native security. As enterprises rush to adopt AI, the tools meant to boost productivity are quietly reshaping the attack surface — and a new class of startups is racing to secure it.
Read more: NewsBlaze
Image credit: US Army Africa